[Mikrotik] [IPsec and Cisco ASA]

2010-05-21 Thread Kurt Plaatjes
Hey Guys After many sleepless hours we have managed to get ipsec running smoothly between Mikrotik 4.9 and CISCO ASA. I am glad to share configs if anyone is interested. Kurt -- next part -- An HTML attachment was scrubbed... URL:

Re: [Mikrotik] [IPsec and Cisco ASA]

2010-05-21 Thread Kurt Plaatjes
Details: Local network: 10.10.0.0/16 Remote networks 172.16.70.0/24 172.16.71.0/24 Local Public IP: 195.10.10.20 Remote Public IP: 202.10.10.20 /ip ipsec proposal set default auth-algorithms=sha1 comment= disabled=no enc-algorithms=\ aes-256 lifetime=1h name=default pfs-group=modp1536 /ip

Re: [Mikrotik] [IPsec and Cisco ASA]

2010-05-21 Thread Kurt Plaatjes
oops... My apologies that should be no. I was doing some other tests and disabled these rules. Thanks! PS: There is a known bug with IPSEC between Mikrotik to Cisco if you have multiple Peers. I managed to duplicate this exact bug... See: http://forum.mikrotik.com/viewtopic.php?f=2t=39243